dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to obtain sensitive author credentials by making a request with an editauthor action, then reading the value of the newlocalpassword password input field in the HTML source of the resulting page.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/26291 | vdb entry |
http://secunia.com/advisories/27440 | third party advisory vendor advisory |
http://packetstorm.linuxsecurity.com/0710-exploits/contentcustom-disclose.txt | exploit |
http://osvdb.org/39150 | vdb entry |